CVE-2025-62690 - Open redirect in error page when link opened in new tab
CVE ID : CVE-2025-62690
Published : Dec. 17, 2025, 1:15 p.m. | 1 hour, 51 minutes ago
Description : Mattermost versions 10.11.x <= 10.11.4 fail to validate redirect URLs on the /error page, which allows an attacker to redirect a victim to a malicious site via a crafted link opened in a new tab.
Severity: 3.1 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Dec. 17, 2025, 1:15 p.m. | 1 hour, 51 minutes ago
Description : Mattermost versions 10.11.x <= 10.11.4 fail to validate redirect URLs on the /error page, which allows an attacker to redirect a victim to a malicious site via a crafted link opened in a new tab.
Severity: 3.1 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...